CVE-2025-31537
- EPSS 0.19%
- Veröffentlicht 01.04.2025 21:15:49
- Zuletzt bearbeitet 02.04.2025 14:58:07
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in madfishdigital Bulk NoIndex & NoFollow Toolkit allows Reflected XSS. This issue affects Bulk NoIndex & NoFollow Toolkit: from n/a through 2.16.
CVE-2023-41688
- EPSS 0.14%
- Veröffentlicht 13.12.2024 15:15:23
- Zuletzt bearbeitet 13.12.2024 15:15:23
Missing Authorization vulnerability in Mad Fish Digital Bulk NoIndex & NoFollow Toolkit allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Bulk NoIndex & NoFollow Toolkit: from n/a through 1.5.
CVE-2024-8803
- EPSS 2.8%
- Veröffentlicht 26.09.2024 03:15:03
- Zuletzt bearbeitet 02.10.2024 17:15:12
The Bulk NoIndex & NoFollow Toolkit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.15. This makes it possible for...
CVE-2024-29791
- EPSS 0.27%
- Veröffentlicht 27.03.2024 13:15:50
- Zuletzt bearbeitet 21.11.2024 09:08:20
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mad Fish Digital Bulk NoIndex & NoFollow Toolkit allows Reflected XSS.This issue affects Bulk NoIndex & NoFollow Toolkit: from n/a through 2.01.
CVE-2023-45065
- EPSS 0.08%
- Veröffentlicht 18.10.2023 13:15:08
- Zuletzt bearbeitet 21.11.2024 08:26:19
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Mad Fish Digital Bulk NoIndex & NoFollow Toolkit plugin <= 1.42 versions.